High severity7.5NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026
CVE-2022-36604
CVE-2022-36604
Description
An access control issue in Canaan Avalon ASIC Miner 2020.3.30 and below allows unauthenticated attackers to arbitrarily change user passwords via a crafted POST request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Canaan/Avalon ASIC Minerdescription
- Range: <=2020.3.30
- cpe:2.3:o:canaan:avalon_asic_miner_firmware:*:*:*:*:*:*:*:*Range: <=2020.3.30
Patches
Vulnerability mechanics
References
1- jamesachambers.com/cryptocurrency-asic-miners-security-and-hacking-audit/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.